Two Way SSL (Client Verification) Fails When Using GCM Ciphers in 188.8.131.52.0 Oracle HTTP Server
(Doc ID 2284372.1)
Last updated on DECEMBER 25, 2017
Applies to:Oracle HTTP Server - Version 184.108.40.206.0 to 220.127.116.11.0 [Release 12c]
Information in this document applies to any platform.
Using Oracle HTTP Server (OHS) 18.104.22.168.0 and having configured two way SSL, the connection fails after providing the client certificate.
This may only occur using some browser brands or versions.
Following is directive to configured two way SSL
An error is shown in the browser after providing the client certificate,
<host.domain> sent an invalid response
OHS debug logging reports that the affected browser is using GCM ciphers with an entry similar to this
Unaffected browsers will show a different cipher that does not include the GCM string.
No other changes were made.
To view full details, sign in with your My Oracle Support account.
Don't have a My Oracle Support account? Click to get started!
In this Document